Alexander Ermolov

613 posts

Alexander Ermolov

Alexander Ermolov

@flothrone

Security researcher, team lead & speaker. Low-level design, firmware and system software. Fuzzing & testing automation for CI/CD pipelines.

Beigetreten Temmuz 2017
130 Folgt1.3K Follower
Alexander Ermolov retweetet
Sam Thomas
Sam Thomas@xorpse·
I'm pleased to announce a new release of the Rust bindings for @HexRaysSA IDA SDK! This release includes v9.3 compatibility. Code: git.idalib.rs Docs: docs.idalib.rs Thank you to @yeggorv who contributed to this release, and to @HexRaysSA for their support.
English
0
20
75
5.2K
Alexander Ermolov retweetet
Nikolaj Schlej
Nikolaj Schlej@NikolajSchlej·
Published my OFFZONE 2025 presentation slides (in Russian) on GitHub: github.com/NikolajSchlej/… Had a great time at the conf, kudos to Bi.Zone and other sponsors and crew members for organizing and running it.
English
1
5
17
2.7K
Alexander Ermolov retweetet
ZeroNights
ZeroNights@ZeroNights·
ZeroNights CFP is open 🔥 Long time no see. ZN will take place on Nov 26, 2025 zeronights.ru The program committee is accepting talks in Offensive and SecOps tracks, rewarding exclusive in-person presentations Submit cfp.zeronights.ru/zeronights-202… @cfptime
ZeroNights tweet media
English
2
4
9
2K
Alexander Ermolov retweetet
Nikolaj Schlej
Nikolaj Schlej@NikolajSchlej·
Published the third part of my blog series about Hydroph0bia (CVE-2025-4275) vulnerability, this one is about the fix as Insyde applied it, and my thoughts on improvements for it. coderush.me/hydroph0bia-pa…
English
3
35
72
9.2K
Alexander Ermolov retweetet
Nikolaj Schlej
Nikolaj Schlej@NikolajSchlej·
Preliminary analysis shows that Insyde fixed Hydroph0bia (CVE-2025-4275) by forcefully removing the NVRAM vars that lead to exploitation during SecureFlashDxe driver startup, and setting a restrictive variable policy for them, so such vars can't be set from the OS anymore.
Nikolaj Schlej tweet media
English
1
17
78
7.6K
Alexander Ermolov retweetet
Alexander Ermolov retweetet
BINARLY🔬
BINARLY🔬@binarly_io·
🚨Binarly is documenting the discovery of CVE-2025-3052, a memory-corruption flaw in a Microsoft-signed UEFI module that lets attackers bypass Secure Boot and run unsigned code before the OS starts. 🔗 Full details: binarly.io/blog/another-c… 🛡️ Advisory: binarly.io/advisories/brl…
BINARLY🔬 tweet media
English
3
69
115
34.3K
Alexander Ermolov retweetet
Nikolaj Schlej
Nikolaj Schlej@NikolajSchlej·
The embargo (12:00 UTC 2025-06-10) is over, let's start a thread on Hydroph0bia (CVE-2025-4275), a trivial SecureBoot and FW updater signature bypass in almost any Insyde H2O-based UEFI firmware used since 2012 and still in use today. English writeup: coderush.me/hydroph0bia-pa…
English
2
92
197
19.9K
Alexander Ermolov retweetet
Adam 'pi3' Zabrocki
Adam 'pi3' Zabrocki@Adam_pi3·
Together with @AlexTereshkin we managed to summarize NVIDIA Offensive Security Research (OSR) work on breaking BMC (reference to our DefCon talk youtube.com/watch?v=dbJQIQ…). This blog post also includes a link to the full paper.
YouTube video
YouTube
NVIDIA Data Center@NVIDIADC

Baseboard Management Controllers (BMCs) are vital for remote server management, but they can also be a significant security risk. Explore findings and recommendations to safeguard your #datacenter infrastructure from NVIDIA's Offensive Security Research team. ➡️ nvda.ws/3HsQOme

English
0
13
28
6.3K
Alexander Ermolov retweetet
raptor
raptor@0xdea·
If for some reason #semgrep doesn’t fit your use case, here’s a port of my C vulnerability research ruleset to #weggli: github.com/0xdea/weggli-p… Read the linked blog post and check it out!
English
1
21
78
5.8K
Alexander Ermolov retweetet
Andrey Konovalov
Andrey Konovalov@andreyknvl·
Gave a talk on external fuzzing of Linux kernel USB drivers with syzkaller at SAFACon by @SAFATeamGmbH. Includes a demonstration of how to rediscover CVE-2024-53104, an out-of-bounds bug in the USB Video Class driver. Slides: docs.google.com/presentation/d…
Andrey Konovalov tweet mediaAndrey Konovalov tweet mediaAndrey Konovalov tweet media
English
3
55
220
19.3K
Alexander Ermolov retweetet
uefitool
uefitool@uefitool·
UEFITool / UEFIExtract / UEFIFind NE A71 - added Kaitai-based parser for Dell DVAR varstores - added tracking of recently opened files - macOS built of UEFITool is now developer-signed - fixed a bunch of minor issues github.com/LongSoft/UEFIT…
English
0
9
21
1.6K
Alexander Ermolov retweetet
Alexander Popov
Alexander Popov@a13xp0p0v·
Slides of my talk at #Zer0Con2025! ⚡️ Kernel-Hack-Drill: Environment For Developing Linux Kernel Exploits ⚡️ I presented the kernel-hack-drill open-source project and showed how it helped me to exploit CVE-2024-50264 in the Linux kernel. Enjoy! a13xp0p0v.github.io/img/Alexander_…
Alexander Popov tweet mediaAlexander Popov tweet mediaAlexander Popov tweet mediaAlexander Popov tweet media
English
3
103
346
27.9K